Rate this post

100% Pass Top-selling GCIH Exams – New 2024 GIAC Pratice Exam

GIAC Information Security Dumps GCIH Exam for Full Questions – Exam Study Guide

Candidates for GCIH Certification Exam

The GCIH test is intended for different categories of specialists such as the incident handlers or the leaders of incident handling teams. System administrators, security architects, or practitioners are also part of the groups of individuals targeted by this exam. Another group of candidates is formed by any individual who has a security-related role as the first responder and wants to leverage his/her skills in incident handling. Then, the GIAC GCIH certification evaluation is suitable for any professional who wants to validate his/her skills in detecting, responding, and finding solutions for any computer security issue and wants to learn how to work with different security tools. Besides, this test is dedicated to any specialists who want to understand different types of attack techniques alongside tools and want to know how to respond quickly and effectively whenever such an attack occurs.

 

NEW QUESTION 107
Which of the following describes network traffic that originates from the inside of a network perimeter and progresses towards the outside?

 
 
 
 

NEW QUESTION 108
You work as a Penetration Tester for the Infosec Inc. Your company takes the projects of security auditing.
Recently, your company has assigned you a project to test the security of the we-aresecure.com Web site. For this, you want to perform the idle scan so that you can get the ports open in the we-are-secure.com server. You are using Hping tool to perform the idle scan by using a zombie computer. While scanning, you notice that every IPID is being incremented on every query, regardless whether the ports are open or close. Sometimes, IPID is being incremented by more than one value.
What may be the reason?

 
 
 
 

NEW QUESTION 109
You work as a Penetration Tester for the Infosec Inc. Your company takes the projects of security auditing.
Recently, your company has assigned you a project to test the security of the we-aresecure.com Web site.
For this, you want to perform the idle scan so that you can get the ports open in the we-are-secure.com server. You are using Hping tool to perform the idle scan by using a zombie computer. While scanning, you notice that every IPID is being incremented on every query, regardless whether the ports are open or close. Sometimes, IPID is being incremented by more than one value.
What may be the reason?

 
 
 
 

NEW QUESTION 110
John works as a Penetration Tester in a security service providing firm named you-are-secure Inc. Recently, John’s
company has got a project to test the security of a promotional Website www.missatlanta.com and assigned the pen-
testing work to John. When John is performing penetration testing, he inserts the following script in the search box at
the company home page:
<script>alert(‘Hi, John’)</script>
After pressing the search button, a pop-up box appears on his screen with the text – “Hi, John.” Which of the following
attacks can be performed on the Web site tested by john while considering the above scenario?

 
 
 
 

NEW QUESTION 111
Which of the following can be used as a Trojan vector to infect an information system?
Each correct answer represents a complete solution. Choose all that apply.

 
 
 
 

NEW QUESTION 112
Which of the following types of attacks come under the category of hacker attacks?
Each correct answer represents a complete solution. Choose all that apply.

 
 
 
 

NEW QUESTION 113
You want to connect to your friend’s computer and run a Trojan on it. Which of the following tools will you use to
accomplish the task?

 
 
 
 

NEW QUESTION 114
Mark works as a Network Administrator for Net Perfect Inc. The company has a Windows-based network. The
company uses Check Point SmartDefense to provide security to the network. Mark uses SmartDefense on the HTTP
servers of the company to fix the limitation for the maximum response header length. Which of the following attacks
can be blocked by defining this limitation?

 
 
 
 

NEW QUESTION 115
You want to scan your network quickly to detect live hosts by using ICMP ECHO Requests. What type of scanning will you perform to accomplish the task?

 
 
 
 

NEW QUESTION 116
Rick works as a Computer Forensic Investigator for BlueWells Inc. He has been informed that some confidential information is being leaked out by an employee of the company. Rick suspects that someone is sending the information through email. He checks the emails sent by some employees to other networks. Rick finds out that Sam, an employee of the Sales department, is continuously sending text files that contain special symbols, graphics, and signs. Rick suspects that Sam is using the Steganography technique to send data in a disguised form. Which of the following techniques is Sam using?
Each correct answer represents a part of the solution. Choose all that apply.

 
 
 
 

NEW QUESTION 117
Which of the following ensures that a party to a dispute cannot deny the authenticity of their signature on a document or the sending of a message that they originated?

 
 
 
 

NEW QUESTION 118
Maria works as a professional Ethical Hacker. She has been assigned the project of testing the security of www.gentech.com. She is using dumpster diving to gather information about Gentech Inc.
In which of the following steps of malicious hacking does dumpster diving come under?

 
 
 
 

NEW QUESTION 119
You want to measure the number of heaps used and overflows occurred at a point in time. Which of the following commands will you run to activate the appropriate monitor?

 
 
 
 

NEW QUESTION 120
Which of the following languages are vulnerable to a buffer overflow attack?
Each correct answer represents a complete solution. Choose all that apply.

 
 
 
 

NEW QUESTION 121
Which of the following statements about Ping of Death attack is true?

 
 
 
 

NEW QUESTION 122
John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. He finds that the We-are-secure server is vulnerable to attacks. As a countermeasure, he suggests that the Network Administrator should remove the IPP printing capability from the server. He is suggesting this as a countermeasure against __________.

 
 
 
 

NEW QUESTION 123
Many organizations create network maps of their network system to visualize the network and understand the relationship between the end devices and the transport layer that provide services.
Which of the following are the techniques used for network mapping by large organizations?
Each correct answer represents a complete solution. Choose three.

 
 
 
 

NEW QUESTION 124
Which of the following functions can be used as a countermeasure to a Shell Injection attack?
Each correct answer represents a complete solution. Choose all that apply.

 
 
 
 

NEW QUESTION 125
Which of the following attacks can be overcome by applying cryptography?

 
 
 
 

NEW QUESTION 126
Adam works as an Incident Handler for Umbrella Inc. He is informed by the senior authorities that the server of the marketing department has been affected by a malicious hacking attack. Supervisors are also claiming that some sensitive data are also stolen.
Adam immediately arrived to the server room of the marketing department and identified the event as an incident. He isolated the infected network from the remaining part of the network and started preparing to image the entire system. He captures volatile data, such as running process, ram, and network connections.
Which of the following steps of the incident handling process is being performed by Adam?

 
 
 
 

NEW QUESTION 127
A user is sending a large number of protocol packets to a network in order to saturate its resources and to disrupt connections to prevent communications between services. Which type of attack is this?

 
 
 
 

NEW QUESTION 128
In which of the following methods does an hacker use packet sniffing to read network traffic between two parties to steal the session cookies?

 
 
 
 

NEW QUESTION 129
John works as a Network Administrator for We-are-secure Inc. He finds that TCP port 7597 of the Weare- secure server is open. He suspects that it may be open due to a Trojan installed on the server. He presents a report to the company describing the symptoms of the Trojan. A summary of the report is given below:
Once this Trojan has been installed on the computer, it searches Notpad.exe, renames it Note.com, and then copies itself to the computer as Notepad.exe. Each time Notepad.exe is executed, the Trojan executes and calls the original Notepad to avoid being noticed.
Which of the following Trojans has the symptoms as the one described above?

 
 
 
 

Authentic Best resources for GCIH Online Practice Exam: https://www.trainingquiz.com/GCIH-practice-quiz.html

Related Links: www.stes.tyc.edu.tw myportal.utt.edu.tt www.stes.tyc.edu.tw myportal.utt.edu.tt www.stes.tyc.edu.tw myportal.utt.edu.tt

Leave a Reply

Please sing in to post your comment or singup if you don't have account.
Enter the text from the image below